I've been looking at auditd/auditctl and it seems like only individual files or directories can be watched, but not directory trees.
My current work around is to audit the gid of the default group for all of the users I care about (accessing the server as a file server via samba).
This is obviously not ideal.
Does anyone know if there is a way to do this?
Thanks,
-Mont
P.S. This seemed to be the appropriate list for this. If it isn't I apologize.
-- fedora-selinux-list mailing list fedora-selinux-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-selinux-list